Does your company do business in Canada? If so, and it includes transmitting, storing, and using personally protected information (PII), the organization must meet the Personal Information Protection and Electronic Documents Act (PIPEDA) requirements. This is where a PIPEDA compliance checklist will come in handy.
Category: Compliance Standards
Staying informed about all of the cyber security compliance standards is essential to keeping your company safe from hackers. Read on to learn about the various steps you can take to stay up to date with your industry’s compliance standards.
-

What is the PCI DSS 4.0 Standard Draft?
All businesses that process payments via credit card face a certain amount of risk with every transaction. On one level, fraudulent payments are always a concern. But on another, cardholder information is extremely valuable, and cybercriminals who target it can impact your clients and business. To keep your customers safe and avoid the potential consequences of noncompliance, it’s important to know what the PCI DSS 4.0 draft is.
-

How Much Does SOC 2 Certification Cost?
Businesses that process client data need to find ways to make their valued clients trust them. Whether your business is storing delicate financial information, transporting medical records, or processing intricate biographical details, it’s important to follow the SOC 2 guidelines set out by the American Institute of CPAs (AICPA). But what do these guidelines entail? What does SOC 2 certification cost, and what factors impact and influence cost?
-

How To Measure And Manage Information Risk
Most businesses feel confident that their data is protected from outside and internal threats, but their information could still be at risk. Knowing how to measure and manage information risk is an important part of your cybersecurity practices.
-

What’s coming in CCPA 2.0?
CCPA 2.0 compliance is necessary for businesses in the state of California. Learn about future privacy regulations under consideration at the federal or state level for the upcoming November 2020 ballot.
-

How to Make Your Website ADA Compliant
It is a generally accepted belief that the Internet should be accessible to every person because access to knowledge is a basic human right. Yet, it’s sometimes easy to overlook the minority of people living with disabilities and how this affects their capacity to use the Internet. Learn everything you need to know about making your organization’s website ADA compliant.
You may be asking,what exactly is the ADA? The ADA stands for Americans With Disabilities Act.
-

What are the Ten Foundational CIS Critical Security Controls?
The CIS sets for ten foundational cybersecurity controls that will help protect your organization against more sophisticated hackers.
George Orwell’s book “1984” may have predicted it best. He said, “Big Brother is watching you.” And indeed, the growing shift to the digital realm of organizations across the globe has given rise to another dangerous industry — cybercrime. Hence the subsequent development and implementation of critical security controls.
-

7 Steps to Implementing a Zero Trust Architecture
Nowadays, all kinds of companies are expanding their horizons and pushing their boundaries beyond what can be done in a physical office space. Even before the COVID-19 pandemic and its effects on businesses across the world, mobility and flexibility have been strategic priorities. Now, our new normal has made most businesses at least partially remote.
-

Top Tech for Your Zero Trust Cybersecurity Architecture
“Do not trust anyone!” The catchphrase that best describes zero trust, is a security concept encouraging organizations to automatically distrust all network activity. As this security concept gains traction, many security providers are flooding the market with solutions. In this article, we will unpack the top technologies for a zero trust cybersecurity architecture.
-

NERC vs. NIST: Choosing the Right Infrastructure Cybersecurity Framework
Cybersecurity implementation can be a long and complicated process if your organization hasn’t been built with security as a part of its design. This is why different committees, interest groups, governments, and cybersecurity professionals come together to develop robust cybersecurity frameworks and regulations.
Depending on the industry that your organization is part of, these frameworks and regulations may be known to you as CIS CSC, NIST, ENISA, ISO 27001 ect. With so many frameworks it is hard to know which is best suited to your organization’s needs. Although all frameworks have their merit, some pertain to either specific industries or requirements.

